CVE-2026-7053: Tenda F456 httpd L7Prot frmL7ProtForm buffer overflow
A security flaw has been discovered in Tenda F456 1.0.0.5. This affects the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Performing a manipulation of the argument page results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7053?
CVE-2026-7053 has a high severity rating due to the potential for remote code execution through a buffer overflow.
How do I fix CVE-2026-7053?
To fix CVE-2026-7053, update the Tenda F456 firmware to the latest version provided by Tenda.
What are the consequences of CVE-2026-7053?
Exploitation of CVE-2026-7053 can allow an attacker to execute arbitrary code on the Tenda F456 device.
Is my device affected by CVE-2026-7053?
The Tenda F456 with firmware version 1.0.0.5 is affected by CVE-2026-7053.
How can I determine if CVE-2026-7053 has been exploited?
To determine if CVE-2026-7053 has been exploited, check for unexplained device behavior or unauthorized access attempts in device logs.